NewReleaseToday Hack: 144K Christian Music User Records Leaked
HEROIC's DarkHive intelligence system discovered the NewReleaseToday data breach, exposing 144,209 records. The breach occured in October 2017, targeting users of this US-based Christian music and media platform. The compromised data includes email addresses and MD5 password hashes, putting over 144,000 users at ongoing credential risk.
Why This Is Dangerous
MD5 is a widely known weak hashing algorithm that cracking tools can defeat rapidly using precomputed rainbow tables and GPU acceleration. Attackers who obtain these 144,209 email and password hash pairs can attempt to recover plaintext passwords and use them in credential stuffing attacks against email providers, banking platforms, and social media sites. Users who reused thier NewReleaseToday passwords on other services remain at risk of account takeover today, years after the breach originally occured.
What Was Exposed
- Email Address
- Password Hash (MD5)
Why This Matters
Religious and community platform breaches are valuable to criminals because thier members often share similar demographics and may use connected services across church networks, donation platforms, and community organizations. A compromised email account can give attackers access to financial accounts, personal communications, and organizational data. Credential stuffing attacks using breach data from sites like NewReleaseToday target many other platforms simultaneously, with criminals testing each email and password pair against dozens of services using automated tools. Exposed email addresses also enable phishing attacks crafted to appeal to the specific interests and values of religious community members.
How Database Breaches Work
Database breaches occur when attackers gain unauthorized access to a website's backend database, typically by exploiting vulnerabilities such as SQL injection, unpatched server software, or compromised administrator credentials. Once inside, they export the complete user table containing account credentials in bulk. The stolen data is then shared on dark web forums and Telegram channels, where it feeds into credential stuffing campaigns and identity theft operations. Breaches from 2017 like NewReleaseToday continue to circulate in criminal communities years later, as thier value for attacking users who have not changed thier passwords persists.
Check If You Are Affected
HEROIC offers a free identity scanner that searches over 400 billion records, including data from breaches like NewReleaseToday. Visit heroic.com to scan your email address and find out if your information was exposed.
Breach Breakdown
144,209 passwords exposed. Is yours one of them?
Enter your email to scan this breach plus 400B+ other leaked records. If you're compromised, we'll show you exactly where and what to change.
Free forever · No account required · Results in seconds